Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
The pitfalls of protocol design [pdf] (ieee-security.org)
11 points by DyslexicAtheist on Sept 25, 2014 | hide | past | favorite | 1 comment



>> Also, difficulties showing termination of parsing some features of the PDF format readily translated into denial of service attacks against existing PDF parsers—we came up with a single PDF file that made all the existing PDF implementations we could test enter an endless loop.

would be nice to have the test pdf released under an open source license to use for security validation in current parser implementation




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: